From: Anthony Liguori <aliguori@us.ibm.com>
To: Marcelo Tosatti <mtosatti@redhat.com>
Cc: kvm-devel <kvm-devel@lists.sourceforge.net>,
Alan Pevec <apevec@redhat.com>
Subject: Re: cirrusfb division by zero
Date: Wed, 30 Apr 2008 13:08:29 -0500 [thread overview]
Message-ID: <4818B59D.7070205@us.ibm.com> (raw)
In-Reply-To: <20080430163640.GB25309@dmt>
Marcelo Tosatti wrote:
> Anthony,
>
> The following sequence crashes F9 guests, when using VNC:
>
> # modprobe cirrusfb
> # vbetool post
>
> Results in Floating point exception at:
>
> cirrus_do_copy()
> {
>
> depth = s->get_bpp((VGAState *)s) / 8
> ...
> sx = (src % (width * depth)) / depth;
> ...
> }
>
> Problem is that ->get_bpp returns 0.
>
> Following band-aid "fixes it" (coff). I have no idea if its correct
> though ?
>
It suggests something is very broken. get_bpp only is supposed to
return 0 when in VGA mode. I don't think blitting should happen when in
VGA mode. Applying the patch is not a bad idea but what was the guest
doing when this happened? Was it in the process of transitioning from
one mode to another?
Regards,
Anthony Liguori
> "vbetool post" corrupts both SDL and VNC displays when using cirrusfb,
> but seems a separate problem.
>
>
> diff --git a/qemu/hw/cirrus_vga.c b/qemu/hw/cirrus_vga.c
> index e14ec35..9f860ff 100644
> --- a/qemu/hw/cirrus_vga.c
> +++ b/qemu/hw/cirrus_vga.c
> @@ -709,6 +709,8 @@ static void cirrus_do_copy(CirrusVGAState *s, int dst, int src, int w, in int notify = 0;
>
> depth = s->get_bpp((VGAState *)s) / 8;
> + if (!depth)
> + depth = 1;
> s->get_resolution((VGAState *)s, &width, &height);
>
> /* extra x, y */
>
>
-------------------------------------------------------------------------
This SF.net email is sponsored by the 2008 JavaOne(SM) Conference
Don't miss this year's exciting event. There's still time to save $100.
Use priority code J8TL2D2.
http://ad.doubleclick.net/clk;198757673;13503038;p?http://java.sun.com/javaone
prev parent reply other threads:[~2008-04-30 18:08 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2008-04-30 16:36 cirrusfb division by zero Marcelo Tosatti
2008-04-30 18:08 ` Anthony Liguori [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=4818B59D.7070205@us.ibm.com \
--to=aliguori@us.ibm.com \
--cc=apevec@redhat.com \
--cc=kvm-devel@lists.sourceforge.net \
--cc=mtosatti@redhat.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.